You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: memdocs/configmgr/sum/deploy-use/add-software-updates-to-an-update-group.md
+3-2Lines changed: 3 additions & 2 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -2,7 +2,7 @@
2
2
title: Add updates to an update group
3
3
titleSuffix: Configuration Manager
4
4
description: Manually or automatically add software updates to a software update group in your environment.
5
-
ms.date: 04/08/2022
5
+
ms.date: 07/12/2022
6
6
ms.topic: conceptual
7
7
ms.prod: configuration-manager
8
8
ms.technology: configmgr-sum
@@ -19,7 +19,8 @@ ms.localizationpriority: medium
19
19
Software update groups provide you with an effective method to organize software updates in your environment. You can manually add software updates to a software update group or automatically add software updates to a software update group by using an ADR. You can also deploy a software update group manually or deploy the group automatically by using an ADR. After you deploy a software update group, you can add new software updates to the group and Configuration Manager will automatically deploy them. Use the following procedures to add software updates to a new or existing software update group.
20
20
21
21
> [!TIP]
22
-
> Starting in version 2203, you can organize software update groups and packages by using folders. This change allows for better categorization and management of software updates. For more information, see [Deploy software updates](deploy-software-updates.md#bkmk_folder).<!-- 3601129 -->
22
+
> - Starting in version 2203, you can organize software update groups and packages by using folders. This change allows for better categorization and management of software updates. For more information, see [Deploy software updates](deploy-software-updates.md#bkmk_folder).<!-- 3601129 -->
23
+
> - Devices running an unsupported operating systems will display as compliant since there aren't applicable updates to the operating system any longer. <!--13952160-->
23
24
24
25
## Add software updates to a new software update group
Copy file name to clipboardExpand all lines: memdocs/configmgr/sum/deploy-use/monitor-software-updates.md
+5-6Lines changed: 5 additions & 6 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -5,7 +5,7 @@ description: The Configuration Manager console provides alerts and statuses to m
5
5
author: mestew
6
6
ms.author: mstewart
7
7
manager: dougeby
8
-
ms.date: 04/08/2022
8
+
ms.date: 07/12/2022
9
9
ms.topic: conceptual
10
10
ms.prod: configuration-manager
11
11
ms.technology: configmgr-sum
@@ -19,14 +19,10 @@ Configuration Manager provides many ways to help you to monitor software updates
19
19
20
20
## Software updates dashboard
21
21
22
-
*(Introduced in version 1610)*
23
-
24
-
Starting in Configuration Manager version 1610, you can use the Software Updates Dashboard to view the current compliance status of devices in your organization and quickly analyze the data to see which devices are at risk. To view the dashboard, navigate to **Monitoring** > **Overview** > **Security** > **Software Updates Dashboard**.
22
+
You can use the Software Updates Dashboard to view the current compliance status of devices in your organization and quickly analyze the data to see which devices are at risk. To view the dashboard, navigate to **Monitoring** > **Overview** > **Security** > **Software Updates Dashboard**.
25
23
26
24
## Drill through required updates
27
25
<!--4224414-->
28
-
*(Introduced in version 1906)*
29
-
30
26
You can drill through compliance statistics to see which devices require a specific Microsoft 365 Apps software update. To view the device list, you need permission to view updates and the collections the devices belong to. To drill down into the device list:
31
27
32
28
1. Go to **Software Library** > **Software Updates** > **All Software Updates**.
@@ -77,6 +73,9 @@ After you configure the alert settings, if the specified conditions occur, Confi
The state messages for software updates provide information about the compliance of software updates and about the evaluation and enforcement state of software update deployments. You can run software update reports to display these state messages. There are more than 30 predefined software update reports available. They're organized in several categories and can be used to report on specific information about software updates and deployments. In addition to using the preconfigured reports, you can also create custom software update reports according to the needs of your enterprise. For more information, see [Operations and maintenance for reporting](../../core/servers/manage/operations-and-maintenance-for-reporting.md).
79
75
76
+
> [!NOTE]
77
+
> Devices running an unsupported operating systems will display as compliant since there aren't applicable updates to the operating system any longer. <!--13952160-->
78
+
80
79
### Recommended software updates reports
81
80
The following are some of the reports that are useful in identifying potential issues:
Copy file name to clipboardExpand all lines: memdocs/intune/enrollment/apple-mdm-push-certificate-get.md
+28-17Lines changed: 28 additions & 17 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -8,7 +8,7 @@ keywords:
8
8
author: Lenewsad
9
9
ms.author: lanewsad
10
10
manager: dougeby
11
-
ms.date: 03/08/2018
11
+
ms.date: 07/11/2022
12
12
ms.topic: how-to
13
13
ms.service: microsoft-intune
14
14
ms.subservice: enrollment
@@ -57,36 +57,47 @@ Select **I agree.** to give Microsoft permission to send data to Apple.
57
57
Select **Download your CSR** to download and save the request file locally. The file is used to request a trust relationship certificate from the Apple Push Certificates Portal.
58
58
59
59
### Step 3. Create an Apple MDM push certificate
60
-
Select **Create your MDM push Certificate** to go to the Apple Push Certificates Portal. Sign in with your company email address Apple ID, and then click **Create a Certificate**. Select **Choose File** and browse to the certificate signing request file, and then choose **Upload**. On the Confirmation page, choose **Download** to the download the certificate (.pem) file, and save the file locally.
60
+
1. Select **Create your MDM push Certificate** to go to the Apple Push Certificates Portal.
61
+
2. Sign in with your organization's Apple ID.
62
+
3. Select **Create a Certificate**.
63
+
4. Read and agree to the terms and conditions. Then select **Accept**.
64
+
5. Select **Choose File** and then select the CSR file you downloaded in Intune.
65
+
6. Select **Upload**.
66
+
7. On the confirmation page, select **Download**. The certificate file (.pem) downloads to your device. Save this file for later.
61
67
62
68
> [!NOTE]
63
-
> The certificate is associated with the Apple ID used to create it. As a best practice, use a company email address for Apple ID for management tasks and make sure the mailbox is monitored by more than one person like a distribution list. Avoid using personal Apple ID.
69
+
> The certificate is associated with the Apple ID used to create it. As a best practice, use a company email address as your Apple ID and make sure the mailbox is monitored by more than one person, such as by a distribution list. Avoid using a personal Apple ID.
64
70
65
-
> [!NOTE]
66
-
> If you plan to federate your existing AAD Accounts with Apple for Managed Apple ID Usage, please contact Apple to have the existing APNS certificate migrated to new managed apple ID. Refer https://support.apple.com/en-in/guide/apple-school-manager/apd6603d9206/web for more info.
71
+
#### Managed Apple ID
72
+
If you plan to federate your existing Azure AD accounts with Apple to use Managed Apple ID, contact Apple to have the existing APNS certificate migrated to your new Managed Apple ID. For more information, see the Apple Support [user guide for Apple School Manager](https://support.apple.com/guide/apple-school-manager/apd6603d9206/web).
67
73
68
74
### Step 4. Enter the Apple ID used to create your Apple MDM push certificate
69
-
Record this ID as a reminder for when you need to renew this certificate.
75
+
Return to the admin center and enter your Apple ID as a reminder for when you need to renew the certificate.
70
76
71
77
### Step 5. Browse to your Apple MDM push certificate to upload
72
-
Go to the certificate (.pem) file, choose **Open**, and then choose **Upload**. With the push certificate, Intune can enroll and manage Apple devices.
78
+
1. Select the **Folder** icon.
79
+
2. Select the certificate file you downloaded in the Apple portal.
80
+
3. Select **Upload** to finish configuring the MDM push certificate.
73
81
74
82
## Renew Apple MDM push certificate
75
-
The Apple MDM push certificate is valid for one year. You must renew it annually to maintain iOS/iPadOS and macOS device management. Once the certificate expires, there is a 30-day grace period to renew it.
83
+
The Apple MDM push certificate is valid for 365 days. You must renew it annually to maintain iOS/iPadOS and macOS device management. Once the certificate expires, there is a 30-day grace period to renew it.
76
84
77
85
Renew the MDM push certificate with the same Apple ID you used to create it.
78
86
79
-
1. Sign in to the [Microsoft Endpoint Manager admin center](https://go.microsoft.com/fwlink/?linkid=2109431), choose **Devices** > **Enroll devices** > **Apple enrollment** > **Apple MDM Push Certificate**.
80
-
2. Choose **Download your CSR** to download and save the request file locally. The file is used to request a trust relationship certificate from the Apple Push Certificates Portal.
81
-
3. Select **Create your MDM push Certificate** to go to the Apple Push Certificates Portal. Find the certificate you want to renew and select **Renew**.
82
-
4. On the **Renew Push Certificate** screen, provide notes to help you identify the certificate in the future, select **Choose File** to browse to the new request file you downloaded, and choose **Upload**.
87
+
1. Sign in to the [Microsoft Endpoint Manager admin center](https://go.microsoft.com/fwlink/?linkid=2109431).
3. Select **Download your CSR** to download and save the request file locally. The file is used to request a trust relationship certificate from the Apple Push Certificates Portal.
90
+
4. Select **Create your MDM push Certificate** to go to the Apple Push Certificates Portal.
91
+
5. Find the certificate you want to renew and select **Renew**.
92
+
6. Select **Choose File** and select the new CSR file you downloaded.
93
+
7. In the provided field, enter a unique note about the certificate so that you can easily identify it later.
83
94
> [!TIP]
84
-
> A certificate can be identified by its UID. Examine the **Subject ID** in the certificate details to find the GUID portion of the UID. Or, on an enrolled iOS/iPadOS device, go to **Settings** > **General** > **Device****Management** > **Management Profile** > **More Details** > **Management Profile**. The second line item, **Topic**, contains the unique GUID that you can match up to the certificate in the Apple Push Certificates portal.
85
-
86
-
6. On the **Confirmation** screen, select **Download** and save the .pem file locally.
87
-
7. In [Intune](https://go.microsoft.com/fwlink/?linkid=2090973), select the **Apple MDM push certificate**browse icon, select the .pem file downloaded from Apple, and choose **Upload**.
95
+
> Each certificate has a unique UID. To find it, look for the subject ID, which shows the GUID portion of the UID, in the certificate details. You can also find this information on the enrolled iOS/iPadOS device. Go to **Settings** > **General** > **DeviceManagement** > **Management Profile** > **More Details** > **Management Profile**. The **Topic** value contains the unique GUID that you can match up to the certificate in the Apple Push Certificates portal.
96
+
8. Select **Upload**.
97
+
9. On the **Confirmation** screen, select **Download**.
98
+
10. Return to the admin center > **Configure MDM Push Certificate**page, and upload your certificate file.
88
99
89
-
Your Apple MDM push certificate appears **Active** and has 365 days until expiration.
100
+
Renewal is complete when your Apple MDM push certificate status appears active in both the admin center and Apple portal.
Copy file name to clipboardExpand all lines: memdocs/intune/remote-actions/device-passcode-reset.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -87,7 +87,7 @@ Instead of being reset, passcodes are removed from iOS/iPadOS devices. If there'
87
87
88
88
## Troubleshooting remote lock failures
89
89
If the remote lock action failed, validate that the following have been correctly configured:
90
-
- If the remote lock action failed on an Android (AOSP) device, confirm that you have a device passcode policy assigned to the device. If the device does not have a device passccode assigned, the remote lock action will not succeed.
90
+
- If the remote lock action failed on an Android (AOSP) device, confirm that you have a device passcode policy assigned to the device. If the device does not have a device passcode assigned, the remote lock action will not succeed.
Copy file name to clipboardExpand all lines: memdocs/intune/remote-actions/devices-wipe.md
+1-1Lines changed: 1 addition & 1 deletion
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -61,7 +61,7 @@ A wipe is useful for resetting a device before you give the device to a new user
61
61
2. Select **Devices** > **All devices**.
62
62
3. Select the name of the device that you want to wipe.
63
63
4. In the pane that shows the device name, select **Wipe**.
64
-
5. For Windows 10 version 1709 or later, you also have the **Wipe device, but keep enrollment state and associated user account** option.
64
+
5. For Windows 10 version 1709 or later, you also have the **Wipe device, but keep enrollment state and associated user account** option. If this option is selected, the following will apply:
Copy file name to clipboardExpand all lines: windows-365/enterprise/cloud-pc-size-recommendations.md
+7-7Lines changed: 7 additions & 7 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ keywords:
7
7
author: ErikjeMS
8
8
ms.author: erikje
9
9
manager: dougeby
10
-
ms.date: 08/02/2021
10
+
ms.date: 07/12/2022
11
11
ms.topic: overview
12
12
ms.service: cloudpc
13
13
ms.subservice:
@@ -38,13 +38,13 @@ For information about end-user hardware requirements, see [End-user hardware req
38
38
39
39
This table shows examples of the different sizes available for a Cloud PC:
40
40
41
-
| Cloud PC CPUs, RAM, and storage | Example scenarios | Recommended gallery image | Recommended apps |
41
+
| Cloud PC CPUs, RAM, and storage | Example scenarios | Recommended apps |
42
42
| --- | --- | --- | --- |
43
-
| 1vCPU/2GB/64GB\*| Firstline workers, call centers, education/training/CRM access. |Windows 10 Enterprise with OS Optimizations |Office (web-based), Microsoft Edge, OneDrive, lightweight line-of-business app (call center application – web-apps), Defender support. |
44
-
| 2vCPU/4GB/256GB<br>2vCPU/4GB/128GB<br>2vCPU/4GB/64GB | Mergers and acquisition, short-term and seasonal, customer services |Windows 10/11 Enterprise with Microsoft 365 and Teams |Microsoft 365 Apps, Microsoft Teams (Audio only), OneDrive, Adobe Reader, Edge, line-of-business apps, Defender support. |
45
-
| 2vCPU/8GB/256GB<br>2vCPU/8GB/128GB | Bring-your-own-PC, work from home, market researchers, government, consultants. |Windows 10/11 Enterprise with Microsoft 365 and Teams |Microsoft 365 Apps, Microsoft Teams, Outlook, Excel, Access, PowerPoint, OneDrive, Adobe Reader, Edge, line-of-business apps, Defender support. |
46
-
| 4vCPU/16GB/512GB<br>4vCPU/16GB/256GB<br>4vCPU/16GB/128GB | Finance, government, consultants, healthcare services, bring-your-own-PC, work from home. |Windows 10/11 Enterprise with Microsoft 365 and Teams |Microsoft 365 Apps, Microsoft Teams, Outlook, Excel, Access, PowerPoint, Power BI, Dynamics 365, OneDrive, Adobe Reader, Edge, line-of-business app, Defender support. |
47
-
| 8vCPU/32GB/512GB<br>8vCPU/32GB/256GB<br>8vCPU/32GB/128GB | Software developers, engineers, content creators, design and engineering workstations. |Windows 10/11 Enterprise with Microsoft 365 and Teams |Microsoft 365 Apps, Microsoft Teams, Outlook, Access, OneDrive, Adobe Reader, Edge, Power BI, Visual Studio Code, virtualization-based workloads: Hyper-V, Windows Subsystem for Linux (WSL), line-of-business apps, and Defender support. |
| 2vCPU/4GB/256GB<br>2vCPU/4GB/128GB<br>2vCPU/4GB/64GB | Mergers and acquisition, short-term and seasonal, customer services | Microsoft 365 Apps, Microsoft Teams (Audio only), OneDrive, Adobe Reader, Edge, line-of-business apps, Defender support. |
45
+
| 2vCPU/8GB/256GB<br>2vCPU/8GB/128GB | Bring-your-own-PC, work from home, market researchers, government, consultants. | Microsoft 365 Apps, Microsoft Teams, Outlook, Excel, Access, PowerPoint, OneDrive, Adobe Reader, Edge, line-of-business apps, Defender support. |
46
+
| 4vCPU/16GB/512GB<br>4vCPU/16GB/256GB<br>4vCPU/16GB/128GB | Finance, government, consultants, healthcare services, bring-your-own-PC, work from home. | Microsoft 365 Apps, Microsoft Teams, Outlook, Excel, Access, PowerPoint, Power BI, Dynamics 365, OneDrive, Adobe Reader, Edge, line-of-business app, Defender support. |
47
+
| 8vCPU/32GB/512GB<br>8vCPU/32GB/256GB<br>8vCPU/32GB/128GB | Software developers, engineers, content creators, design and engineering workstations. | Microsoft 365 Apps, Microsoft Teams, Outlook, Access, OneDrive, Adobe Reader, Edge, Power BI, Visual Studio Code, virtualization-based workloads: Hyper-V, Windows Subsystem for Linux (WSL), line-of-business apps, and Defender support. |
48
48
49
49
\* The 1vCPU option is being retired. Instead, we recommend the 2vCPU as the minimum configuration for new purchases.
Copy file name to clipboardExpand all lines: windows-365/enterprise/device-images.md
+1-12Lines changed: 1 addition & 12 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -7,7 +7,7 @@ keywords:
7
7
author: ErikjeMS
8
8
ms.author: erikje
9
9
manager: dougeby
10
-
ms.date: 06/02/2022
10
+
ms.date: 07/12/2022
11
11
ms.topic: overview
12
12
ms.service: cloudpc
13
13
ms.subservice:
@@ -71,17 +71,6 @@ There are two sets of images available to choose from across the different versi
71
71
- UWP packages removed.
72
72
- Task scheduler actions disabled.
73
73
74
-
### Recommended image by license
75
-
76
-
You can choose any image for any Windows 365 license. However, for optimal performance, the following recommendations apply:
77
-
78
-
| Windows 365 license | Recommended gallery image |
79
-
| --- | --- |
80
-
| 2vCPU/4GB/64GB and above | Windows 10/11 Enterprise + Microsoft 365 Apps |
81
-
| 1vCPU/2GB/64GB*| Windows 10 Enterprise + OS Optimizations |
82
-
83
-
\* The 1vCPU option is being retired. Instead, we recommend the 2vCPU as the minimum configuration for new purchases.
84
-
85
74
### Gallery image update cycle
86
75
87
76
All supported Windows 365 gallery images are updated monthly after the security patch release schedule of Windows Servicing & Delivery. This happens around the middle of each month.
0 commit comments